Vulnerabilities > ARM > High

DATE CVE VULNERABILITY TITLE RISK
2017-06-07 CVE-2017-7563 Incorrect Permission Assignment for Critical Resource vulnerability in ARM Trusted Firmware
In ARM Trusted Firmware 1.3, RO memory is always executable at AArch64 Secure EL1, allowing attackers to bypass the MT_EXECUTE_NEVER protection mechanism.
network
high complexity
arm CWE-732
8.1
2017-04-20 CVE-2017-2784 Improper Certificate Validation vulnerability in ARM Mbed TLS
An exploitable free of a stack pointer vulnerability exists in the x509 certificate parsing code of ARM mbed TLS before 1.3.19, 2.x before 2.1.7, and 2.4.x before 2.4.2.
network
high complexity
arm CWE-295
8.1